FG-IR-24-452: Insertion of Sensitive 2FA Information in logs and debug command
Published Oct 14, 2025
·Updated
An Insertion of Sensitive Information into Log File vulnerability [CWE-532] in FortiOS may allow an attacker with at least read-only privileges to retrieve sensitive 2FA-related information via observing logs or via diagnose command.
Affected Software
9 affected componentsFixes available
Fortinet FortiOS>=7.6.0<=7.6.3
Fortinet FortiOS>=7.4
Fortinet FortiOS>=7.2
Fortinet FortiOS>=7.0
Fortinet FortiOS>=6.4
Fortinet FortiProxy>=7.6.0<=7.6.3
Fortinet FortiProxy>=7.4.0<=7.4.13
Fortinet FortiProxy>=7.2
Fortinet FortiProxy>=7.0
Event History
Oct 14, 2025
Advisory Published
via FortiGuard·12:00 AM
Data Sourced
via FortiGuard·12:00 AM
DescriptionSeverityWeaknessAffected Software
Jun 9, 2026
Advisory Published
via FortiGuard·02:43 PM
Frequently Asked Questions
1
What is the severity of FG-IR-24-452?
The severity of FG-IR-24-452 is considered high due to the potential exposure of sensitive 2FA-related information.
2
How do I fix FG-IR-24-452?
To fix FG-IR-24-452, upgrade to FortiOS version 7.6.4 or later.
3
Which versions of FortiOS are affected by FG-IR-24-452?
FortiOS versions 6.0 through 7.6.3 are affected by FG-IR-24-452.
4
Can an attacker exploit FG-IR-24-452 remotely?
Yes, an attacker with read-only privileges can exploit FG-IR-24-452 remotely by accessing log files.
5
What kind of information is leaked in FG-IR-24-452?
FG-IR-24-452 may leak sensitive two-factor authentication (2FA) information through logs.